[Top][All Lists]

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: package.el + DVCS for security and convenience

From: Ted Zlatanov
Subject: Re: package.el + DVCS for security and convenience
Date: Mon, 31 Dec 2012 16:41:14 -0500
User-agent: Gnus/5.130006 (Ma Gnus v0.6) Emacs/24.3.50 (gnu/linux)

On Tue, 01 Jan 2013 01:47:46 +0900 "Stephen J. Turnbull" <address@hidden> 

SJT> Ted Zlatanov writes:
>> The GnuTLS libraries are not an external binary tool.  Do you mean
>> `gnutls-cli'?

SJT> No, I mean the externally maintained *binary* libraries that will be
SJT> linked to, rather than called via fork or similar.

I see.  Thanks for explaining.

SJT> The question is whether dynamic linkage is any safer than using the
SJT> command line interface.
>> You should ask a security expert.

SJT> I've already cited a security expert (the GPG team).  You disclaim
SJT> expertise, but are willing to say you think following that advice is a
SJT> bad idea.  Hm.

I did not say the GPG team has given bad advice.

In any case, I think this discussion has served its purpose and hope we
can continue it with facts and code instead of suppositions.  I look
forward to that.


reply via email to

[Prev in Thread] Current Thread [Next in Thread]